Welcome to the GoFuckYourself.com - Adult Webmaster Forum forums.

You are currently viewing our boards as a guest which gives you limited access to view most discussions and access our other features. By joining our free community you will have access to post topics, communicate privately with other members (PM), respond to polls, upload content and access many other special features. Registration is fast, simple and absolutely free so please, join our community today!

If you have any problems with the registration process or your account login, please contact us.

Post New Thread Reply

Register GFY Rules Calendar
Go Back   GoFuckYourself.com - Adult Webmaster Forum > >
Discuss what's fucking going on, and which programs are best and worst. One-time "program" announcements from "established" webmasters are allowed.

 
Thread Tools
Old 03-16-2015, 02:52 AM   #1
transbetty
Confirmed User
 
transbetty's Avatar
 
Industry Role:
Join Date: May 2013
Location: Prague
Posts: 197
:2cents New SSL vulnerability

Hello, not sure if it was posted before.

Quote:
On Tuesday, March 3, 2015, researchers announced a new SSL/TLS vulnerability called the FREAK attack. It allows an attacker to intercept HTTPS connections between vulnerable clients and servers and force them to use weakened encryption, which the attacker can break to steal or manipulate sensitive data. This site is dedicated to tracking the impact of the attack and helping users test whether they?re vulnerable.

The FREAK attack was discovered by Karthikeyan Bhargavan at INRIA in Paris and the miTLS team. Further disclosure was coordinated by Matthew Green. This report is maintained by computer scientists at the University of Michigan, including Zakir Durumeric, David Adrian, Ariana Mirian, Michael Bailey, and J. Alex Halderman. The team can be contacted at [email protected].
Read more / check your browser at: https://freakattack.com/

Sorry if it's old news on GFY.
__________________

Tranny Sites - tranny, fetish & BDSM porn site reviews by Betty
Tranny Ladies - online tranny dating and community portal
Transbetty - my personal blog (articles/photos/reflections)
transbetty is offline   Share thread on Digg Share thread on Twitter Share thread on Reddit Share thread on Facebook Reply With Quote
Old 03-16-2015, 03:15 AM   #2
seeandsee
Check SIG!
 
seeandsee's Avatar
 
Industry Role:
Join Date: Mar 2006
Location: Europe (Skype: gojkoas)
Posts: 50,945
Nice, thanks god they cant do anything with me, no sensitive data
__________________
BUY MY SIG - 50$/Year

Contact here
seeandsee is offline   Share thread on Digg Share thread on Twitter Share thread on Reddit Share thread on Facebook Reply With Quote
Old 03-16-2015, 03:36 AM   #3
transbetty
Confirmed User
 
transbetty's Avatar
 
Industry Role:
Join Date: May 2013
Location: Prague
Posts: 197
Quote:
Originally Posted by seeandsee View Post
Nice, thanks god they cant do anything with me, no sensitive data
I think most processors like CCBILL are covered.

I would be careful though running a retail site with connection to some small payment gateways. They are often patched later.
__________________

Tranny Sites - tranny, fetish & BDSM porn site reviews by Betty
Tranny Ladies - online tranny dating and community portal
Transbetty - my personal blog (articles/photos/reflections)
transbetty is offline   Share thread on Digg Share thread on Twitter Share thread on Reddit Share thread on Facebook Reply With Quote
Old 03-16-2015, 04:48 AM   #4
RummyBoy
Confirmed User
 
Join Date: Dec 2009
Posts: 2,157
BBC News - Millions at risk from 'Freak' encryption bug

A week is a long time in virus news - its like a decade. I guess Firefox is probably safer than other browsers until the fix but it looks like Chrome is already fixed.
RummyBoy is offline   Share thread on Digg Share thread on Twitter Share thread on Reddit Share thread on Facebook Reply With Quote
Old 03-16-2015, 04:55 AM   #5
freecartoonporn
Confirmed User
 
freecartoonporn's Avatar
 
Industry Role:
Join Date: Jan 2012
Location: NC
Posts: 7,683
not this shit again.
freecartoonporn is offline   Share thread on Digg Share thread on Twitter Share thread on Reddit Share thread on Facebook Reply With Quote
Old 03-16-2015, 05:01 AM   #6
RummyBoy
Confirmed User
 
Join Date: Dec 2009
Posts: 2,157
Quote:
Originally Posted by freecartoonporn View Post
not this shit again.
RummyBoy is offline   Share thread on Digg Share thread on Twitter Share thread on Reddit Share thread on Facebook Reply With Quote
Old 03-16-2015, 05:07 AM   #7
transbetty
Confirmed User
 
transbetty's Avatar
 
Industry Role:
Join Date: May 2013
Location: Prague
Posts: 197
Haha great video response.

I agree it's more of a "freat-out" situ, but... I wouldn't want to be 000.1% who got their processing closed for this.
__________________

Tranny Sites - tranny, fetish & BDSM porn site reviews by Betty
Tranny Ladies - online tranny dating and community portal
Transbetty - my personal blog (articles/photos/reflections)
transbetty is offline   Share thread on Digg Share thread on Twitter Share thread on Reddit Share thread on Facebook Reply With Quote
Old 03-16-2015, 05:59 AM   #8
transbetty
Confirmed User
 
transbetty's Avatar
 
Industry Role:
Join Date: May 2013
Location: Prague
Posts: 197
Code:
Chrome for Windows and all modern versions of Firefox are known to be safe.
This vulnerability requires both server and client (browser) to be unpatched.
__________________

Tranny Sites - tranny, fetish & BDSM porn site reviews by Betty
Tranny Ladies - online tranny dating and community portal
Transbetty - my personal blog (articles/photos/reflections)
transbetty is offline   Share thread on Digg Share thread on Twitter Share thread on Reddit Share thread on Facebook Reply With Quote
Old 03-16-2015, 06:08 AM   #9
transbetty
Confirmed User
 
transbetty's Avatar
 
Industry Role:
Join Date: May 2013
Location: Prague
Posts: 197
FYI: Amerinoc patched my VPS very promptly. Thumbs up guys.
__________________

Tranny Sites - tranny, fetish & BDSM porn site reviews by Betty
Tranny Ladies - online tranny dating and community portal
Transbetty - my personal blog (articles/photos/reflections)
transbetty is offline   Share thread on Digg Share thread on Twitter Share thread on Reddit Share thread on Facebook Reply With Quote
Old 03-16-2015, 08:01 AM   #10
woj
<&(©¿©)&>
 
woj's Avatar
 
Industry Role:
Join Date: Jul 2002
Location: Chicago
Posts: 47,882
"This report is maintained by computer scientists at the University of Michigan"

vulnerable sites:
1702 umich.edu 141.211.243.44


__________________
Custom Software Development, email: woj#at#wojfun#.#com to discuss details or skype: wojl2000 or gchat: wojfun or telegram: wojl2000
Affiliate program tools: Hosted Galleries Manager Banner Manager Video Manager
Wordpress Affiliate Plugin Pic/Movie of the Day Fansign Generator Zip Manager
woj is offline   Share thread on Digg Share thread on Twitter Share thread on Reddit Share thread on Facebook Reply With Quote
Post New Thread Reply
Go Back   GoFuckYourself.com - Adult Webmaster Forum > >

Bookmarks

Tags
attack, team, freak, vulnerable, vulnerability, attacker, report, scientists, michigan, university, computer, maintained, disclosure, paris, inria, bhargavan, mitls, matthew, coordinated, including, green, ariana, browser, check, read



Advertising inquiries - marketing at gfy dot com

Contact Admin - Advertise - GFY Rules - Top

©2000-, AI Media Network Inc



Powered by vBulletin
Copyright © 2000- Jelsoft Enterprises Limited.